top | item 42640231

(no title)

kookiburra | 1 year ago

That is a great distinction to make, though E2EE email providers don't even meet "pseudo E2EE". Unless using PGP, emails are encrypted on the server, making it no more than encryption at rest that can be bypassed without ever updating the client.

Unfortunately most encrypted providers skip through all these details and jump straight to advertising "zero knowledge encryption" which is dangerously misleading

discuss

order

LinuxBender|1 year ago

Fair enough. All great points and I agree. I was being too generous with the zero friction E2EE providers. As a side note one of the things that bugs me is that the most commonly used chat platform that advertises fake E2EE is run by the very person that would have shredded anyone saying it when he was younger. It's sad watching people sell out but I suppose I can't blame him as he needed a bigger boat.

kookiburra|1 year ago

Well, these services take a lot of moxie to run